A vulnerability in Cisco IOS XE SD-WAN Software could allow an unauthenticated, local attacker to gain unauthorized access to an affected device. The vulnerability is due to the existence of default credentials within the default configuration of an affected device. An attacker who has access to an affected device could log in with elevated privileges. A successful exploit could allow the attacker to take complete control of the device. This vulnerability affects Cisco devices that are running Cisco IOS XE SD-WAN Software releases 16.11 and earlier.
References
Link | Resource |
---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sd-wan-cred-EVGSF259 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: cisco
Published: 2020-01-22T00:00:00
Updated: 2020-02-20T04:05:17
Reserved: 2018-12-06T00:00:00
Link: CVE-2019-1950
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-02-19T20:15:14.410
Modified: 2023-05-22T18:57:24.750
Link: CVE-2019-1950
JSON object: View
Redhat Information
No data.